SOC Detection Expert

il y a 2 semaines


Paris, Île-de-France AXA France Temps plein

Job Description:About the jobJob purposeSecurity Operations Center (SOC) delivers the following capabilities to the AXA entities around the globe: Security Incident Detection, Threat Hunting, Security Incident Response and Threat Intelligence.Highly skilled SOC Detection Expert with a deep understanding of detection engineering is responsible for designing, developing, and implementing detection use cases to increase AXA threat detection capability and meet stakeholder requirements. The role also requires being conversant with performing complex data manipulations and analysis.Main missionsAdversary Emulation Capability Leadership:Design/Implement automated attack scenarios to validate SOC readiness under realistic threat conditions.Provide expert support to SOC teams, Use Case Factory, and AXA entities by incorporating their needs and feedback into platform capabilities and scenario design.Lead the definition, delivery, and hands-on development of new platform features, guiding the team's architectural decisions and prioritizing enhancements to ensure the solution matures in accuracy, scalability, and security.Continuously integrate insights gained from adversary emulation into enhanced detection logic.Detection Engineering: Design, implement, and optimize detection use cases, rules, and algorithms within SIEM, EDR, and other detection platformsDocumentation & Knowledge Sharing: Document detection strategies, rules, and processes, and share knowledge with SOC teams to improve overall operational readiness.Metrics & Reporting: Develop and report on key performance indicators (KPIs) related to detection efficiency, effectiveness, and coverage to senior managementTechnology Evaluation: Stay abreast of emerging technologies and trends in cybersecurity, leading the evaluation and implementation of new tools and techniques that enhance detection capabilitiesExpected skills & experienceWe are looking for someone with the following experience and skills:ExperienceExperience in Information Security > 2 yearsExperience in DevSecOps > 2 yearsTechnical skillsAdvanced Python scripting and development capabilities (familiarity with Django is a plus)Proven track record in adversary emulation and security control validationSolid understanding of detection engineering concepts and MITRE ATT&CKFamiliarity with different security attack vectors and means of protectionProficiency in Microsoft Sentinel and Kusto Query Language (KQL)Strong problem-solving skills with the ability to troubleshoot and resolve complex issuesAbility to work independently and as part of a team in a fast-paced environmentExcellent written and verbal communication skills (Fluent in English)EducationUniversity degree in information security or equivalent work experienceWhat we offerWe bring together the expertise, cultural diversity and creativity of over 8,000 employees worldwide and we're committed to equal opportunities in all aspects of employment (gender, LGBT+, disabled persons, or people of different origins) and to promoting Diversity & Inclusion by creating a work environment where all employees are treated with dignity and respect, and where individual differences are valued.About the entityAXA is becoming a sustainable tech-led company and at AXA Group Operations we are one of the major catalysts for this transformation.We set the tone by triggering and empowering the evolution of our insurance business model through technology and innovation, driving its concrete implementation globally at speed, with a high quality of advisory and execution.We are present across 17 countries with committed, highly qualified teams. We leverage technology, data, sourcing, security and investment allocation in a global way, but also achieve economies of scale and synergies when necessary.At AXA Group Operations, we want to be recognized in three fields of action:State-of-the-art Data Technology to drive customer experienceState-of-the-art Procurement & Sourcing to drive efficiency and better manage risksHigh-Performing Global Team for stronger partnerships with AXA entitiesAbout AXAAs a world-leading insurance company, we act for human progress by protecting what matters. With 153,000 employees in 54 countries working for 105 million customers, we've created a truly dynamic and vibrant community. Inclusion and diversity link closely with our values, and together we're nurturing a culture of respect, for each other, for our customers and the communities around us. Join AXA and you'll feel like you belong, are included and can thrive. You'll be able to shape the way you work and truly grow your potential as you seek out new opportunities, push boundaries and benefit people in critical moments of their lives. This is your chance to build the tomorrow you want. Know you can.


  • CHEF DE PROJET SOC

    il y a 3 jours


    Paris, Île-de-France CyberTee Temps plein

    Mission ? Chef de Projet Client CyberSOCPiloter des projets de mise en place et de montée en maturité de CyberSOC chez des clients grands comptesDéployer et adapter les infrastructures de détection : SIEM / SIEM NG / EDRCoordonner les équipes SOC, architectes et consultants techniquesPiloter les phases de build, recette et mise en production des...

  • Analyste SOC Confirmé

    il y a 2 semaines


    Paris, Île-de-France NEVERHACK Temps plein

    QUI SOMMES-NOUS ?NEVERHACKest un groupe français expert en cybersécurité depuis plus de 40 ans, présent dans 10 pays avec plus de 1 200 collaborateurs.Notre mission ?Construire un monde numérique plus sûr grâce à des solutions innovantes et éthiques.Notre offre :Conseil, formation, évaluation des risques, IA… nous accompagnons entreprises et...

  • SOC Manager

    il y a 20 heures


    Paris, Île-de-France SThree Temps plein

    Contexte de la mission :L'équipe Global Cyber Defense a lancé l'exécution d'un programme mondial de cyberdéfense - le Programme de Transformation du Security Operations Center (SOC) - visant à améliorer la manière dont le client anticipe, détecte et réagit aux cyberattaques.Le Programme de Transformation du SOC recherche un Chef de Projet...

  • Analyste SOC N3

    il y a 2 semaines


    Paris, Île-de-France eXalt Shield Temps plein

    Offre d'emploi pour un contrat en CDI au sein de l'entité Shield du groupe eXalt. Contexte de la mission :Vous interviendrez au sein de l'équipe d'Adrien sur des sujets tels que : Détection et traitement des incidents (SOC niveau 3 / Global SOC) Gestion EDR :Crowdstrike+ suivi Antivirus Intégration d'une nouvelle solution : Kaspersky Réponse à...

  • Analyste SOC N3

    il y a 20 heures


    Paris, Île-de-France SkillX Temps plein

    Pour l'un de nos clients, nous sommes à la recherche d'une ou d'un analyste SOC N3 confirmé·e (3 ans d'expérience ou plus hors stage et alternance). Pour résumer la mission, tu seras chargé de :l'administration et l'exploitation des solutions de détection EDR / XDR et SIEM,la qualification, l'analyse et la gestion des alertes de sécurité +...

  • Analyste SOC N3

    il y a 6 jours


    Paris, Île-de-France SKILLX Temps plein

    Pour l'un de nos clients, nous sommes à la recherche d'une ou d'un analyste SOC N3 confirmé·e (3 ans d'expérience ou plus). Pour résumer la mission, tu seras chargé de : l'administration et l'exploitation des solutions de détectionEDR / XDRetSIEM, la qualification, l'analyse et la gestion des alertes de sécurité + notification et accompagnement...

  • Team Lead, SOC

    il y a 7 jours


    Paris, Île-de-France Mistral AI Temps plein

    About Mistral  At Mistral AI, we believe in the power of AI to simplify tasks, save time, and enhance learning and creativity. Our technology is designed to integrate seamlessly into daily working life. We democratize AI through high-performance, optimized, open-source and cutting-edge models, products and solutions. Our comprehensive AI platform is...

  • Team Lead, SOC

    il y a 5 jours


    Paris, Île-de-France Mistral Ai Temps plein

    About Mistral At Mistral AI, we believe in the power of AI to simplify tasks, save time, and enhance learning and creativity. Our technology is designed to integrate seamlessly into daily working life. We democratize AI through high-performance, optimized, open-source and cutting-edge models, products and solutions. Our comprehensive AI platform is designed...

  • Ingénieur SOC N3 H/F

    il y a 3 jours


    Paris, Île-de-France SQUAD - Cabinet de conseils et d'expertises Temps plein

    Depuis 2011, Squad s'impose comme un acteur clé de la cybersécurité. Classé parmi les leaders français du secteur et certifié PASSI RGS et LPM, nous accompagnons les plus grandes organisations dans la protection de leurs systèmes d'information, avec notre offre 360° en conseil, intégration, expertise et centre de services.Notre mission : Securing...

  • Leader Opérationnel SOC

    il y a 6 jours


    Paris, Île-de-France NaTran Temps plein

    NaTran construit, entretient et développe l'un des plus importants réseaux de transport de gaz en Europe. Notre ambition ? Acheminer le gaz de nos clients dans les meilleures conditions de sécurité, de coût et de fiabilité.Au-delà de notre position dans le transport de gaz en Europe, nous sommes un acteur essentiel de la transition...